Skip to main content

Vendor/product archive

oracle / retail_xstore_point_of_service CVEs

Beta · best-effort

87 CVEs tagged to oracle / retail_xstore_point_of_service16 Critical, 36 High, 33 Medium, 2 Low, 0 Unrated.

CVE-2019-0197

Published Jun 11, 2019

A vulnerability was found in Apache HTTP Server 2.4.34 to 2.4.38. When HTTP/2 was enabled for a http: host or H2Upgrade was enabled for h2 on a https: host, an Upgrade request fro…

CVSS 4.2 · Medium

CVE-2019-5427

Published Apr 22, 2019

c3p0 version < 0.9.5.4 may be exploited by a billion laughs attack when loading XML configuration due to missing protections against recursive entity expansion when loading config…

CVSS 7.5 · High

CVE-2019-0217

Published Apr 8, 2019

In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded server could allow a user with valid credentials to authenticate…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2018-3126

Published Oct 17, 2018

Vulnerability in the Oracle Retail Xstore Point of Service component of Oracle Retail Applications (subcomponent: Xenvironment). Supported versions that are affected are 15.0.2, 1…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-11763

Published Sep 25, 2018

In Apache HTTP Server 2.4.17 to 2.4.34, by sending continuous, large SETTINGS frames a client can occupy a connection, server thread and CPU time without any connection timeout co…

CVSS 5.9 · Medium
Showing 51-75 of 87 CVEsPage 3 of 4